SNS Topics should not allow global publishing
Ensure that your AWS Simple Notification Service (SNS) topics do not allow Everyone to publish.
Addresses: Security
Additional Reading:
Audit your SNS to safe gaurd your data
Ensure that your AWS Simple Notification Service (SNS) topics do not allow Everyone to publish.
Addresses: Security
Additional Reading:
Ensure that your AWS Simple Notification Service (SNS) topics do not allow "Everyone" to subscribe.
Addresses: Security
Additional Reading:
Server-Side Encryption (SSE) must be enabled for the SNS topics. This ensures protection of sensitive data delivered as messages to subscribers.
Addresses: Security
Additional Reading:
SNS Topics should be encrypted with Customer managed keys (CMK) instead of AWS managed keys.
Addresses: Security
Additional Reading:
Check if any topic is publicly accessible.
Addresses: Security
Additional Reading:
Ensure that subscribers get the data over secure-only protocol.
Addresses: Security
Let there be no topics without subscription.
Addresses: Security, Operational Maturity
If you are not yet convinced to sign up with Cloudanix, that's not a problem. We recommend you use a comprehensive checklist which your team can use to perform a manual assessment of your workload.